-
-
Notifications
You must be signed in to change notification settings - Fork 670
Closed
Labels
defectSomething isn't workingSomething isn't workingp2Non-critical bugs, and features that help organizations to identify and reduce riskNon-critical bugs, and features that help organizations to identify and reduce risksize/MMedium effortMedium effort
Milestone
Description
Current Behavior
Currently when you're adding component with CPE like:
cpe:2.3:a:7-Zip:7-Zip:18.03:::::::*
The DependencyTrack analyzers will not find any issues. When switching from "Z" to "z" everything works correctly:
cpe:2.3:a:7-zip:7-zip:18.03:::::::*
Proposed Behavior
The CPE (and PURL I suppose) should be case-insensitive, all combination should find vulnerabilities.
Checklist
- I have read and understand the contributing guidelines
- I have checked the existing issues for whether this enhancement was already requested
Metadata
Metadata
Assignees
Labels
defectSomething isn't workingSomething isn't workingp2Non-critical bugs, and features that help organizations to identify and reduce riskNon-critical bugs, and features that help organizations to identify and reduce risksize/MMedium effortMedium effort